AI/ML/LLM Penetration Testing Toolkit by Mr-Infect — the #1 GitHub resource for AI security, red teaming, and adversarial ML techniques. This repository is dedicated to offensive and defensive security for cutting-edge AI, Machine Learning (ML), and Large Language Models (LLMs) like ChatGPT, Claude, and LLaMA.
☆286Feb 19, 2026Updated 7 months ago
Alternatives and similar repositories for AI-penetration-testing
Users that are interested in AI-penetration-testing are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A structured and beginner-friendly knowledge base for learning Certified Ethical Hacker (CEH v13) concepts. This repository contains cle…☆35Mar 11, 2026Updated 6 months ago
- The ultimate OWASP MCP Top 10 security checklist and pentesting framework for Model Context Protocol (MCP), AI agents, and LLM-powered sy…☆17Dec 22, 2025Updated 8 months ago
- Pentest Copilot is an AI-powered browser based ethical hacking assistant tool designed to streamline pentesting workflows.☆1,491Aug 14, 2026Updated last month
- PentestAgent is an AI agent framework for black-box security testing, supporting bug bounty, red-team, and penetration testing workflows.☆3,089Sep 7, 2026Updated last week
- Autonomous penetration testing using a swarm of AI agents. Orchestrates recon, classification, exploitation, and reporting specialists wi…☆2,520Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 🛡⚔️AI-Powered Penetration Testing Framework with automated vulnerability scanning, multi-agent system, and compliance reporting🛡⚔️☆458Sep 13, 2026Updated last week
- A carefully organized, large-scale collection of cybersecurity and computer security books, research material, and technical references c…☆98Feb 12, 2026Updated 7 months ago
- Open-source AI pentester that proves every finding. Machine oracles re-run each exploit; verified bugs ship a proof capsule you can repla…☆1,684Sep 13, 2026Updated last week
- A tool for detecting subdomain takeover vulnerabilities by checking DNS records☆34May 28, 2026Updated 3 months ago
- Kali Linux Polyglot Framework for Autonomous Pentesting/Cyber Security☆136Aug 16, 2026Updated last month
- Watchtower is a simple AI-powered penetration testing automation CLI tool that leverages LLMs and LangGraph to orchestrate agentic workfl…☆212Feb 27, 2026Updated 6 months ago
- OWASP Autonomous Penetration Testing Standard☆695Sep 3, 2026Updated 2 weeks ago
- AI-powered modular Active Directory red-team framework for authorized penetration testing, AD enumeration, attack-path analysis, Kerber…☆354Jun 11, 2026Updated 3 months ago
- An autonomous red-teaming engine for LLMs. RedThread manages the full security lifecycle: generating adversarial attacks, executing preci…☆48Updated this week
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Burp Suite extension that adds built-in MCP tooling, AI-assisted analysis, privacy controls, passive and active scanning and more☆1,499Sep 2, 2026Updated 2 weeks ago
- AIRecon is an autonomous cybersecurity agent that combines a self-hosted Large Language Model (Ollama) with a Kali Linux Docker sandbox a…☆1,061Sep 11, 2026Updated last week
- claude-red is a curated library of offensive security skills designed for the Claude skills system. Each skill is a structured SKILL.md f…☆6,272Aug 30, 2026Updated 3 weeks ago
- Bug bounty agent framework for Claude Code, Codex, Gemini, Cursor, Windsurf, Copilot, and OpenClaw — 48 agents, 26 commands, 19 CLI tools…☆953Jun 12, 2026Updated 3 months ago
- HexStrike AI MCP Agents is an advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity to…☆11,979Aug 3, 2026Updated last month
- Find zero-days while you sleep. DeepZero is an automated vulnerability research framework that parses, decompiles, and analyzes thousands…☆721Sep 10, 2026Updated last week
- ☆37Jan 11, 2026Updated 8 months ago
- Turn Claude Code into your offensive security research assistant. Specialized AI subagents for authorized penetration testing plan engage…☆2,246Aug 16, 2026Updated last month
- 8 Claude skills · 100+ recon capabilities · 80 secret-regex patterns · 80+ dorks · 9 read-only credential validators · 27 attack-path tem…☆2,629Aug 30, 2026Updated 3 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Automated prompt injection testing framework for LLM-integrated applications with dual-LLM architecture.☆207Mar 14, 2026Updated 6 months ago
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆270Mar 28, 2026Updated 5 months ago
- Autonomous Hacking Agent for Red Team☆5,555Updated this week
- Modular OSINT and attack surface analysis platform for authorized security research, with risk scoring, attack paths, and report generati…☆85Jun 4, 2026Updated 3 months ago
- Autonomous AI pentesting engine across web, cloud, identity, CI/CD, IaC, databases, Active Directory, Kubernetes, IoT firmware and AI/LLM…☆951Updated this week
- A Claude Code skill bundle for bug hunting and external red-team work - 82 skills, 15 slash commands, 681 disclosed-report patterns curat…☆4,565Updated this week
- Simple web app to track OWASP WSTG security testing progress☆30Sep 12, 2025Updated last year
- Pure PowerShell port of PassTheCert tool to authenticate to an LDAP/S server with a certificate through Schannel☆19May 22, 2026Updated 3 months ago
- A powerful subdomain enumeration tool that aggregates data from multiple sources to create comprehensive lists of root subdomains.☆69May 2, 2026Updated 4 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Azure Service Subdomain Enumeration☆81Sep 2, 2024Updated 2 years ago
- AutoAR is an automated security reconnaissance tool, ASM and Discord bot for bug bounty hunters and penetration testers. It automates gat…☆250Updated this week
- Offline AI Security Assistant for Air-Gapped Pentesting☆87Apr 19, 2026Updated 5 months ago
- AI/ML Pentesting Roadmap for Beginners☆787Aug 4, 2026Updated last month
- Autonomous AI pentesting agents — real-time reconnaissance, vulnerability detection, and exploitation orchestration. Go + TypeScript.☆1,109Updated this week
- Generate wordlists using pattern logic and expressions.☆23Jun 18, 2026Updated 3 months ago
- Portable security rules for the action boundary of AI agents☆23Updated this week